Try our new research platform with insights from 80,000+ expert users

F5 Silverline Managed Services vs Imperva DDoS comparison

Sponsored
 

Comparison Buyer's Guide

Executive SummaryUpdated on Dec 5, 2024

Review summaries and opinions

We asked business professionals to review the solutions they use. Here are some excerpts of what they said:
 

Categories and Ranking

Cloudflare
Sponsored
Ranking in Distributed Denial-of-Service (DDoS) Protection
1st
Average Rating
8.4
Reviews Sentiment
7.1
Number of Reviews
71
Ranking in other categories
CDN (1st), Managed DNS (1st), Cloud Security Posture Management (CSPM) (14th)
F5 Silverline Managed Services
Ranking in Distributed Denial-of-Service (DDoS) Protection
19th
Average Rating
7.6
Reviews Sentiment
6.8
Number of Reviews
14
Ranking in other categories
Web Application Firewall (WAF) (26th)
Imperva DDoS
Ranking in Distributed Denial-of-Service (DDoS) Protection
9th
Average Rating
8.6
Reviews Sentiment
7.1
Number of Reviews
77
Ranking in other categories
CDN (7th), Web Application Firewall (WAF) (23rd)
 

Mindshare comparison

As of February 2025, in the Distributed Denial-of-Service (DDoS) Protection category, the mindshare of Cloudflare is 18.7%, down from 19.3% compared to the previous year. The mindshare of F5 Silverline Managed Services is 1.5%, down from 2.7% compared to the previous year. The mindshare of Imperva DDoS is 7.3%, down from 8.0% compared to the previous year. It is calculated based on PeerSpot user engagement data.
Distributed Denial-of-Service (DDoS) Protection
 

Q&A Highlights

it_user659505 - PeerSpot reviewer
Jul 13, 2017
 

Featured Reviews

Spencer Malmad - PeerSpot reviewer
It's easy to set up because you point the DNS to it, and it's working in under 15 minutes
Cloudflare is highly scalable. Cloudflare is a system with a web portal that the end users like me see. It's a console where we can adjust the DNS, caching, and security features all in that console. Cloudflare owns thousands of servers across the world that cache the data. It's a powerful solution. When clients sign up for Cloudflare, they're getting this monster content delivery network, security, and a web application firewall in one. It's all rolled into one, and it's massive. Unless you have your website hosted on a massive hosting provider, there's no way that you can deliver the amount of data that Cloudflare can provide to the end users. If you have static content, there's no way that you can ever match what Cloudflare can do. Obviously, there are competitors to Cloudflare that do the same, but I'm saying other types of solutions. Let's say you go with F5. Great, that's on-prem. That's in your colo. You can't deliver as much data to the internet as you can with a CDN. You don't have to spend $20,000 on a net scaler, F5, or whatever Cisco's selling now. You don't have to buy that. You pay them $50 a month or $150 a month. It's totally worth it because even in five years, you'll never get the performance value, not just the actual ROI. You have to consider how much throughput you can get with Cloudflare.
DejanBlagojevic - PeerSpot reviewer
Mitigates more bot activity when defending web applications than any other vendor but comes at a price
F5 Silverline Managed Services is expensive. You do get world-class quality of mitigation, but I think it is still pricey. You can find similar services, potentially of slightly lower quality, from other vendors like Cloudflare or Akamai for about half the price. When you compare what you get for the money you spend at Cloudflare or Akamai, you do get less protection but you are not dishing out too much for it. On the other hand, at F5 Silverline Managed Services, you do get better protection but, but you are paying double for it. We have had mixed feedback from our clients about this. Most of them would rather pay less for a bit of a lower-quality defense than overshoot their budget. The most common piece of feedback we receive is that the difference in protection levels is not reflected in the price.
Syed Ubaid Ali Jafri - PeerSpot reviewer
I like the content monitoring feature which I haven't seen in other WAF solutions.
They could improve by minimizing false positive results. Although this occurs less with Imperva, we would like to see some further improvements. We have been using this product for last 1 years, it's result is very impressive. But due to the excessive load on the Web site where thousands of requests‎ are generated from legitimate users, however the request in which any sequential or specialised characters are requested would be directly blocked by impreva . Currently imperva blocks the special character request generated from the user, as I conduct a test where I am parsing the encoded html values of the same special characters to the input field, imperva bypasses these encoded values for example : ' i.e. %27 or / i.e %2F, the WAF bypasses these encoded characters. I hope that this device should have a capability to detect the pattern which is associated with Xss or Xsrf, rather then by not blocking the request which contains any special characters.

Quotes from Members

We asked business professionals to review the solutions they use. Here are some excerpts of what they said:
 

Pros

"The solution is very good at mitigating threats."
"Cloudflare is a security SaaS provider that provides security and protects us from any application layer attack."
"It is a stable solution. I rate the stability a ten out of ten...I rate the scalability a ten out of ten."
"I like Cloudflare's application gateway and DDoS protection."
"Its most significant benefit to date is the speed with which it refreshes DNS records on the internet once you change it. If you are changing a website or registering a new record, it is very quick."
"The UI is good."
"DDoS attacks target unprotected machines. Cloudflare detects and stops these attacks using internal systems. It identifies incoming DDoS attacks, issuing challenges or blocking them immediately."
"The most valuable feature of Cloudflare is that it has a free version. They give us the free version with the anti-DDoS features and also the load balancing solution."
"The most valuable feature is flexibility."
"The most valuable feature of F5 Silverline Managed Services is it becomes similar to a distributed architecture."
"The most valuable feature of F5 Silverline Managed Services is the benchmark performance."
"We have a lot of businesses that we put behind this solution, and it has really helped us in terms of monitoring the logs and incidents."
"Most vendors fulfill the requirements for standard DDoS protection, but F5 Silverline Managed Services has a better understanding of defending web applications like HTTP and can mitigate more bot activity than any other vendor."
"It's a good front end for public infrastructure"
"Its flexibility is the most valuable because it is a managed service. The good part is that you don't need to set it up. It just needs DNS routing, which is the easiest thing. Our client had Akamai for certain websites because they were using CDN features. They had NetScaler on the internal zone, F5 AWAFs on the data centers, and no WAF at all in the cloud. One of the main activities of the project was to move all these policies into a single WAF so that we could control and use that as a choke point. That exercise itself was very easy because it was a managed service and F5 Silverline Web Application Firewall does that for you. That's the best thing about F5 Silverline Web Application Firewall. It is easy to apply policies on-premises. If you have AWAF on-premises and you want to replicate some policies on F5 Silverline Web Application Firewall, other than the policies that it applies by itself, it is easy because you have a team that supports it. F5 Silverline Web Application Firewall works perfectly fine. It pretty much does everything that an Advanced WAF on-premises should do."
"The product’s UI is easy to understand."
"There are quite a few useful Imperva Incapsula features. For example, one of them is the reports. The graphics are very good and it's easy to configure. The whole process is very fast and reliable too. They have good tech support as well."
"Incapsula takes care of the CDN infrastructure and bandwidth volume, providing several enterprise "load balancing" features."
"The three-second service level agreement is already better than the competition."
"The most valuable features for us are the DDoS and Bot."
"The solution's most valuable aspect is that it is easy to configure."
"It's very pretty easy to onboard the URL."
"Setup was straightforward, very simple. I only entered the domain and Incapsula returned the DNS data that I needed to change for the protection to be configured."
"The technical support is excellent."
 

Cons

"The solution could work at being less expensive. It costs a lot to use it."
"It would be beneficial for us if Cloudflare could offer a scrubbing solution. This would involve taking a snapshot of my website and keeping it live during a DDoS attack, ensuring uninterrupted service for our users. DDoS attacks are typically short in duration, and having Cloudflare maintain the site's availability from its secure network would enhance the overall user experience. I would appreciate it if Cloudflare could consider implementing this feature. Many organizations already utilize similar capabilities in their CDN platforms, where a static snapshot of the web page is displayed during DDoS attacks. In terms of features, Cloudflare needs to enhance its resilience and stay more focused on adopting new technologies. For instance, solutions like F5 XC Box, Access Solution, and Distributed Cloud Solution have impressive features, and Cloudflare should strive to match and exceed those capabilities. There's a need for improvement in areas like AI-based DDoS attacks and Layer 7 WAF features. Cloudflare should prioritize enhancements in areas such as behavioral DDoS and protection against SQL injection attacks, considering the prevalent trend of public exposure to the internet for business reasons. Overall, Cloudflare needs to invest more in advancing its feature set."
"Although I think it's quite good, it doesn't provide me with all the features I would expect to have if I were using Imperva."
"There are some issues with the CDN services."
"Even if I wanted to, I wouldn't be able to buy Cloudflare in my country."
"It should have easier documentation for the configuration. It's very technical and people who aren't technical should also be able to do the configuration."
"The product needs to improve its automation."
"We are a product integrator and reseller, and we would like to have a better partner relationship, similar to a channel sales relationship. Sometimes we are on our own or get diverted by Cloudflare because they have direct sales, which competes with us and makes it difficult to build a relationship with this company since we want to be an MSP or a managed service provider for the solution."
"The navigation is difficult to use."
"I just hope the price can be cheaper."
"F5 Silverline Managed Services can improve by adding features that Palo Alto has."
"You need to have Linux knowledge in order to use the shell."
"We need to have support for cloud protection, which is not offered by this solution."
"The price is high in comparison to other products."
"The product could be improved on the global load and the integration with the other solution like Cisco and Dell. As a representor of the operation, we prefer to have one platform which can accommodate all type of integration. We are also looking for more improvements in the security policy configuration."
"We'd like more AI to be used. Right now, they don't use it enough."
"The product could use a broader scope in the area of policies."
"The solution should integrate with something that looks at continuous security management."
"Some maintenance must be performed by our IT team."
"There’s nothing that’s missing in terms of features."
"It needs to be improved every time there are new attacks."
"I would like to have support for SSL management and secure DNS."
"I would like to see automated reporting to improve visibility."
"We faced issues regarding compliance with client procedures. The client had strict compliance rules, and Imperva needed to be on a VM, while the client required containerization, causing a conflict. They went with Imperva for the on-premise version but shelved the cloud project due to too many blockers."
 

Pricing and Cost Advice

"We are using the free version."
"The product's pricing is cheap."
"I believe their performance has improved, but I'd like to refrain from discussing the pricing aspect related to the cloud. The pricing, in my opinion, could be simplified, and I think they should consider reevaluating the pricing for support, as it can be quite high. At times, this cost can make it challenging to choose CARFAGuard or opt for the support."
"It's a premium model. You can start at zero and work your way up to the enterprise model, which has a very high pricing level."
"A free version of the solution is available."
"The solution has many features but there are ones that you need to pay for. Sometimes you have to find out which is available for free and which you have to pay for."
"In terms of licensing costs, we don't pay for licensing for Cloudflare. We only establish communication, then for peering, Cloudflare takes care of the cross-connection in different data centers."
"So far I use free tier and happy with it. You can subscribe to business package if needed."
"The price of F5 Silverline Managed Services could be reduced."
"The price of F5 Silverline Managed Services could be better, they are not very flexible. The price of the solution is based on the requirements of the enterprise."
"The product’s pricing is reasonable."
"F5 Silverline Web Application Firewall works based on your bandwidth. They look at the clean bandwidth and do the pricing. 20% of a total pipe would be a clean bandwidth. The list price or a non-negotiated price for F5 Silverline Web Application Firewall would be around $2,200 per application per year for everything that you need. When you get into an enterprise kind of a setup, they negotiate this to the last bit. I would easily take 20% on that, which would be the cost, but it should cover all your Advance WAF features, bot protection, tech campaign, etc. It is built as a package and gives you most of the capability. You don't get the mobile SDK, which is an additional license. Mobile SDK is required only if you're buying or if you have a mobile application, and you are going to instrument F5 or Imperva into your mobile appliance. This anyways would be an additional module. It doesn't come within the WAF, but it is a WAF feature."
"The license is on a yearly basis."
"It is expensive."
"There is a license or subscription renewal that our customers pay."
"The data packages are higher than our needs so we end up paying for data that we don't use."
"It is not expensive compared to the other similar solutions in this category."
"​Although the pricing can be a little high, it is worth the protection and security that it offers.​"
"Pricing could be more competitive."
"The solution's price is high for small companies."
report
Use our free recommendation engine to learn which Distributed Denial-of-Service (DDoS) Protection solutions are best for your needs.
832,138 professionals have used our research since 2012.
 

Comparison Review

it_user68487 - PeerSpot reviewer
Nov 6, 2013
CloudFlare vs Incapsula: Web Application Firewall
CloudFlare vs Incapsula: Round 2 Web Application Firewall Comparative Penetration Testing Analysis Report v1.0 Summary This document contains the results of a second comparative penetration test conducted by a team of security specialists at Zero Science Lab against two cloud-based Web…
 

Answers from the Community

it_user659505 - PeerSpot reviewer
Jul 13, 2017
Jul 13, 2017
Firstly, implementing WAF is an excellent decision. With application logic and date being at the core of the technology stack value, WAF is the most reasonable place to monitor application traffic and defend from hacker's attacks. I have recently published a blog post on the issues one needs to consider when selecting a WAF. In addition, here are some thoughts on the specific questions you a...
2 out of 13 answers
Jul 10, 2017
I’m more familiar with F5, Netscaler & FortiADC products. I don’t know Imperva but i can give you my opinion on these products : Comprehensive : F5 = Netscaler > FortiADC Depending of your needs. If you have a Citrix XenApp or XenDesktop architecture, it’s preferable to choose Netscaler to inspect ICA flows. For the rest, F5 is better. Financial : FortiADC > Netscaler > F5 Intuitivity : FortiADC > Netscaler > F5 Dynamic security signatures : FortiADC > F5 > Netscaler Benefit vs. Cost : If the needs are lites : FortiADC > Netscaler > F5 If the needs are strongs : Netscaler > F5 > FortiADC If you need it after the 1st of January 2018, FortiADC should be a very nice choice.
it_user646266 - PeerSpot reviewer
Jul 10, 2017
Hi, 1. Security: Which one offers the best response to known and 0 day threats? WAF products cannot provide 0 day security but some vendors has integrations with sandbox products (like imperva with fireeye etc..) I’ve been deploying F5 ASM and Imperva WAF for years and I can say that Imperva is just security focused company and signatures are being released very fast and stable. Implementation is better comparing to F5. F5 is basicly known for ADC so their focus is not security, that’s why they accuired a company for WAF. 2. Administration: Which one is more intuitive and easy to administrate? I can honestly say that Imperva is best to manage. You can configure every function easyly and quickly. 3. Benefit vs. Cost F5 can give you a possibility to configure everything you want with Irules. Imperva is limited as for the advanced stream config. Imperva is expensive but F5 ASM is cheaper.
 

Top Industries

By visitors reading reviews
Educational Organization
24%
Computer Software Company
13%
Comms Service Provider
8%
Financial Services Firm
7%
Financial Services Firm
19%
Insurance Company
11%
Computer Software Company
11%
Comms Service Provider
9%
Financial Services Firm
17%
Computer Software Company
14%
Manufacturing Company
9%
Government
7%
 

Company Size

By reviewers
Large Enterprise
Midsize Enterprise
Small Business
 

Questions from the Community

Which is the best DDoS protection solution for a big ISP for monitoring and mitigating?
Cloudflare. We are moving from Akamai prolexic to Cloudflare. Cloudflare anycast network outperforms Akamai static GR...
Which would you choose - Cloudflare DNS or Quad9?
Cloudflare DNS is a very fast, very reliable public DNS resolver. It is an enterprise-grade authoritative DNS service...
What do you like most about Cloudflare?
Cloudflare offers CDN and DDoS protection. We have the front end, API, and database in how you structure applications.
Is Citrix ADC (formerly Netscaler) the best ADC to use and if not why?
For ADC, any ADC can do a good job. But in case if you want to add WAF functionality to the same ADC hardware you hav...
What do you like most about Imperva Incapsula?
We use Imperva DDoS to stop DDoS attacks and reduce the amount of unwanted queries against web services or web scraping.
What is your experience regarding pricing and costs for Imperva DDoS?
The pricing is rated a ten on a scale where ten is very expensive. The solution is only cloud-based and does not prov...
What needs improvement with Imperva DDoS?
Pricing can be improved, as it is quite expensive. Additionally, support response times for emails can sometimes be d...
 

Also Known As

Cloudflare DNS
F5 Silverline Web Application Firewall, F5 Silverline DDoS Protection
Imperva Incapsula
 

Overview

 

Sample Customers

Trusted by over 9,000,000 Internet Applications and APIs, including Nasdaq, Zendesk, Crunchbase, Steve Madden, OkCupid, Cisco, Quizlet, Discord and more.
City Bank, Ricacorp Properties, Miele, American Systems, Bangladesh Post Office
Hitachi, BNZ, Bitstamp, Moz, InnoGames, BTCChina, Wix, LivePerson, Zillow and more.
Find out what your peers are saying about F5 Silverline Managed Services vs. Imperva DDoS and other solutions. Updated: January 2025.
832,138 professionals have used our research since 2012.